Adding Malwarebytes
Note: Ensure Log360 Cloud agent is installed on at least one Windows device in your network. To configure the agent, follow the steps provided
here.
- Log into your Log360 Cloud dashboard.
- Move to Settings -> Configuration Settings -> Log source configuration -> Applications tab.
- From the right pane, click on the Security Applications tab to view the list of applications being monitored.
- To add a new application, click on Add Security Applications.
- Select Malwarebytes from the Add-on Type drop down box.
- Expand the list by clicking the "+" icon to add a new device.
- Choose from the drop-down menu to add Configured devices, Workgroup devices, domain devices, etc.
- To add new devices manually, click on Configure Manually and enter Log Source.
- Click on Select and Add to add the log source.
- Use the Select Agent dropdown to select the device that is the agent to which the logs will be forwarded.
- The applications will now be added for monitoring.
Configuring the Syslog Service on Malwarebytes devices
To configure the Syslog service in your Malwarebytes devices, follow the steps below:
- Log into the Management console of the Malwarebytes device.
- Move to the Admin panel and open the Syslog Settings tab.
- Click Change and tick the Enable Syslog check box.
- To export traffic monitoring logs to Log360 Cloud server, enter the following details in the space provided:
- Address <IP address or host name of the Log360 Cloud Agent server>
- Port <Any port that the Log360 Cloud agent server is listening to>
- Protocol
- Payload format <CEF>
- Click OK to save.